Gentoo Linux Security Advisory GLSA 200906-04 – An error in the Apache Tomcat JK Connector might allow for an information disclosure flaw. The Red Hat Security Response Team discovered that mod_jk does not properly handle (1) requests setting the Content-Length header while not providing data and (2) clients sending repeated requests very quickly. Versions less than 1.2.27 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/78746/glsa-200906-04.txt
Source: https://packetstormsecurity.com/files/78746/Gentoo-Linux-Security-Advisory-200906-4.html

